Lately 419 spam have used methods to mis-linked IPs in ther original source to prevent blackliting, I need to know if this seems like something they are doing, And I found this out when I checked the first IP when Spam Cannibal had matched entry and what it was, but their second IP had the real source such as listed by Spamhaus as 41.220.75.3, but my spam IP I received for that same area was 194.44.18.83, and was not listed in ANY blacklists, Overall is this method of off tracking IPs the theme 419 spammers want to happen?

Also spam coming from compromised machines in a botnet may have the IP of that zombie PC._________________Former Microsoft MVP 2005-2009, Consumer Security
Please do not PM or Email me for personal support. Post in the Forums instead and we will all learn.

419 spam is even spewed from borrowed botnets (I have known about this for at least 3 or 4 years now). There is probably nothing really new to this method. As most of us know, people world-wide still fall for 419 advance fee fraud scams. You could probably get more people to respond to your question who follow these types of spam methods at AA419 or TheScamBaiter.